llama-index-readers-docugami@0.2.0 vulnerabilities

llama-index readers docugami integration

  • latest version

    0.3.1

  • latest non vulnerable version

  • first published

    1 years ago

  • latest version published

    1 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the llama-index-readers-docugami package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Expected Behavior Violation

    llama-index-readers-docugami is a llama-index readers docugami integration

    Affected versions of this package are vulnerable to Expected Behavior Violation via the DocugamiReader class. An attacker can cause loss of important document content, disrupt parent-child chunk hierarchies, and lead to inaccurate AI outputs by exploiting hash collisions that result in overwriting structurally distinct document chunks containing identical text.

    How to fix Expected Behavior Violation?

    Upgrade llama-index-readers-docugami to version 0.3.1 or higher.

    [,0.3.1)